Updated on 2023-07-11 GMT+08:00

Changing the Password for the Kerberos Administrator

Scenario

It is recommended that the administrator periodically change the password of Kerberos administrator kadmin to improve the system O&M security.

If the user password is changed, the OMS Kerberos administrator password is changed as well.

Prerequisites

You have installed the client on any node in the cluster and obtained the IP address of the node.

Procedure

  1. Log in to the node where the client is installed as user root.
  2. Run the following command to go to the client directory, for example, /opt/hadoopclient:

    cd /opt/hadoopclient

  3. Run the following command to set environment variables:

    source bigdata_env

  4. Run the following command to change the password for kadmin/admin. The password change takes effect on all servers. Keep the password secure because it cannot be retrieved once lost.

    kpasswd kadmin/admin

    Enter the password (default password: Admin@123) and set a new password. The new password must meet the following complexity requirements:

    • Contains at least 8 characters.
    • Contains at least four types of the following: uppercase letters, lowercase letters, numbers, spaces, and special characters (~`!?,.;-_'(){}[]/<>@#$%^&*+|\=).
    • Cannot be the same as the username or the username spelled backwards.
    • Cannot be a common easily-cracked password, for example, Admin@12345.
    • Cannot be the same as the password used in the last N times. N indicates the value of Repetition Rule in Configuring Password Policies.